Re: [foaf-dev] Webid and IS, private conversation partly forwarded

Kingsley Idehen <kidehen-HpHEqLDO2a7UEDaH6ef/[email protected]> Wed, 05 Mar 2014 16:06:23 -0500
Newsgroups gmane.comp.web.rdfweb
Message-ID <[email protected]>
This is a cryptographically signed message in MIME format.

--===============1374703818550822292==
Content-Type: multipart/signed; protocol="application/pkcs7-signature"; micalg=sha1; boundary="------------ms060005010100040400060204"

This is a cryptographically signed message in MIME format.

--------------ms060005010100040400060204
Content-Type: multipart/alternative;
 boundary="------------070804030007090307050309"

This is a multi-part message in MIME format.
--------------070804030007090307050309
Content-Type: text/plain; charset=UTF-8; format=flowed
Content-Transfer-Encoding: quoted-printable

On 3/5/14 3:51 PM, Peter Williams wrote:
> [to a question about whether my webid and IIS work is useful for=20
> anything]=E2=80=A6.
>
> =E2=80=A6
>
> I actually recently claimed 10h =E2=80=9Cprofessional=E2=80=9D credit f=
or my Webid=20
> work (2 years ago), in some professional certification program. I=20
> think I spent in excess of a 100h, much of it learning =E2=80=9Chow=E2=80=
=9D IIS=20
> culture (and Azure) MIGHT adopt the ideas of Webid.
>
> I had no interesting in changing the cloud world so it looks like a=20
> purists opinion of how the web OUGHT to be (particularly with its=20
> orientation to be being a huge spying platform, being too openly=20
> designed, W3C culture being either duplicitous or failing to=20
> understand the nature of the =E2=80=9Creal world=E2=80=9D). Rather, cou=
ld Webid be=20
> another protocol (in the =E2=80=9Cmanaged=E2=80=9D cloud). I was intere=
sting Webid=20
> changing the status quo (of generalized spying by nation state); but=20
> got nowhere. IN fact, I needed up believing the folk were actively=20
> acting in concert with those - academics - who believe the web should=20
> be as open as it is (so it facilitates the kind of generalized spying=20
> culture folks used to critizie me for talking about, before recent=20
> revelations),.
>
> I don't recall if I ever really nailed how to make IIS accept a=20
> self-signed client cert that had never been previously added to a=20
> windows cert trust store. This was the breakdown point, since my goals =

> were to use IIS native SSL (not some software library added to IIS).=20
> WIndows SSL comes with several architectural/assurance properties=20
> (that make it fit to be a cloud platform, and is not just some=20
> user-mode protocol handler in apache (where everything about security=20
> handling is simple/simplistic and =E2=80=9Csetup=E2=80=9D for ease of e=
xploit insertion).
>
> Not a simple answer. But, it was not an easy problem. Making security=20
> toys is trivial; but I was not trying to make a demo.
>
>

Happy New Year!

I'll make time to have a look, this is a worthwhile exercise for Azure.


--=20

Regards,

Kingsley Idehen=09
Founder & CEO
OpenLink Software
Company Web: http://www.openlinksw.com
Personal Weblog: http://www.openlinksw.com/blog/~kidehen
Twitter Profile: https://twitter.com/kidehen
Google+ Profile: https://plus.google.com/+KingsleyIdehen/about
LinkedIn Profile: http://www.linkedin.com/in/kidehen





--------------070804030007090307050309
Content-Type: text/html; charset=UTF-8
Content-Transfer-Encoding: quoted-printable

<html>
  <head>
    <meta content=3D"text/html; charset=3DUTF-8" http-equiv=3D"Content-Ty=
pe">
  </head>
  <body bgcolor=3D"#FFFFFF" text=3D"#000000">
    <div class=3D"moz-cite-prefix">On 3/5/14 3:51 PM, Peter Williams
      wrote:<br>
    </div>
    <blockquote
cite=3D"mid:ab92dd6026b143edbc4c314463ca62bb-SpFSo2qakKv3Lx48z76ChhQPvRvOrrxkfJQBlh8aapg@public.gmane.org=
utlook.com"
      type=3D"cite">
      <meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3DU=
TF-8">
      <meta name=3D"generator" content=3D"Windows Mail 17.5.9600.20413">
      <style data-externalstyle=3D"true"><!--
p.MsoListParagraph, li.MsoListParagraph, div.MsoListParagraph {
margin-top:0in;
margin-right:0in;
margin-bottom:0in;
margin-left:.5in;
margin-bottom:.0001pt;
}
p.MsoNormal, li.MsoNormal, div.MsoNormal {
margin:0in;
margin-bottom:.0001pt;
}
p.MsoListParagraphCxSpFirst, li.MsoListParagraphCxSpFirst, div.MsoListPar=
agraphCxSpFirst,=20
p.MsoListParagraphCxSpMiddle, li.MsoListParagraphCxSpMiddle, div.MsoListP=
aragraphCxSpMiddle,=20
p.MsoListParagraphCxSpLast, li.MsoListParagraphCxSpLast, div.MsoListParag=
raphCxSpLast {
margin-top:0in;
margin-right:0in;
margin-bottom:0in;
margin-left:.5in;
margin-bottom:.0001pt;
line-height:115%;
}
--></style>
      <div data-externalstyle=3D"false" dir=3D"ltr" style=3D"font-family:=

        'Calibri', 'Segoe UI', 'Meiryo', 'Microsoft YaHei UI',
        'Microsoft JhengHei UI', 'Malgun Gothic',
        'sans-serif';font-size:12pt;">
        <div>
          <div>[to a question about whether my webid and IIS work is
            useful for anything]=E2=80=A6.</div>
          <div><br>
          </div>
          <div>=E2=80=A6</div>
          <div><br>
          </div>
          <div>I actually recently claimed 10h=C2=A0=E2=80=9Cprofessional=
=E2=80=9D credit for
            my Webid work (2 years ago), in some professional
            certification program.=C2=A0I think I spent in excess of a 10=
0h,
            much of it learning=C2=A0=E2=80=9Chow=E2=80=9D IIS culture (a=
nd Azure) MIGHT
            adopt the ideas of Webid.
          </div>
          <div><br>
          </div>
          <div>I had no interesting in changing the cloud world so it
            looks like a purists opinion of how the web OUGHT to be
            (particularly with its orientation to be being a huge spying
            platform, being too openly designed, W3C culture being
            either duplicitous or failing to understand the nature of
            the=C2=A0=E2=80=9Creal world=E2=80=9D). Rather, could Webid b=
e another protocol
            (in the=C2=A0=E2=80=9Cmanaged=E2=80=9D cloud). I was interest=
ing Webid changing
            the status quo (of generalized spying by nation state); but
            got nowhere. IN fact, I needed up believing the folk were
            actively acting in concert with those - academics - who
            believe the web should be as open as it is (so it
            facilitates the kind of generalized spying culture folks
            used to critizie me for talking about, before recent
            revelations),.</div>
          <div><br>
          </div>
          <div>I don't recall if I ever really nailed how to make IIS
            accept a self-signed client cert that had never been
            previously added to a windows cert trust store. This was the
            breakdown point, since my goals were to use IIS native SSL
            (not some software library added to IIS). WIndows SSL comes
            with several architectural/assurance properties (that make
            it fit to be a cloud platform, and is not just some
            user-mode protocol handler in apache (where everything about
            security handling is simple/simplistic and=C2=A0=E2=80=9Csetu=
p=E2=80=9D for ease
            of exploit insertion).</div>
          <div><br>
          </div>
          <div>Not a simple answer. But, it was not an easy problem.
            Making security toys is trivial; but I was not trying to
            make a demo.</div>
          <br>
        </div>
        <br>
      </div>
    </blockquote>
    <br>
    Happy New Year!<br>
    <br>
    I'll make time to have a look, this is a worthwhile exercise for
    Azure. <br>
    <br>
    <br>
    <pre class=3D"moz-signature" cols=3D"72">--=20

Regards,

Kingsley Idehen	     =20
Founder &amp; CEO=20
OpenLink Software    =20
Company Web: <a class=3D"moz-txt-link-freetext" href=3D"http://www.openli=
nksw.com">http://www.openlinksw.com</a>
Personal Weblog: <a class=3D"moz-txt-link-freetext" href=3D"http://www.op=
enlinksw.com/blog/~kidehen">http://www.openlinksw.com/blog/~kidehen</a>
Twitter Profile: <a class=3D"moz-txt-link-freetext" href=3D"https://twitt=
er.com/kidehen">https://twitter.com/kidehen</a>
Google+ Profile: <a class=3D"moz-txt-link-freetext" href=3D"https://plus.=
google.com/+KingsleyIdehen/about">https://plus.google.com/+KingsleyIdehen=
/about</a>
LinkedIn Profile: <a class=3D"moz-txt-link-freetext" href=3D"http://www.l=
inkedin.com/in/kidehen">http://www.linkedin.com/in/kidehen</a>




</pre>
  </body>
</html>

--------------070804030007090307050309--

--------------ms060005010100040400060204
Content-Type: application/pkcs7-signature; name="smime.p7s"
Content-Transfer-Encoding: base64
Content-Disposition: attachment; filename="smime.p7s"
Content-Description: S/MIME Cryptographic Signature
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--------------ms060005010100040400060204--

--===============1374703818550822292==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
foaf-dev mailing list
foaf-dev-RyYwo1q5J+qsOXdr9/[email protected]
http://lists.foaf-project.org/mailman/listinfo/foaf-dev
--===============1374703818550822292==--